CVE-2025-8040: Memory safety bugs fixed in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141 in Mozilla Firefox
Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunderbird < 141, and Thunderbird < 140.1.
CVE-2025-8040: Memory safety bugs fixed in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141 in Mozilla Firefox
Description
Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunderbird < 141, and Thunderbird < 140.1.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- mozilla
- Date Reserved
- 2025-07-22T10:14:10.587Z
- Cvss Version
- null
- State
- PUBLISHED
Threat ID: 687ffd51a915ff00f7fb59cd
Added to database: 7/22/2025, 9:06:25 PM
Last updated: 7/22/2025, 9:06:25 PM
Views: 1
Related Threats
CVE-2025-8044: Memory safety bugs fixed in Firefox 141 and Thunderbird 141 in Mozilla Firefox
UnknownCVE-2025-8043: Incorrect URL truncation in Mozilla Firefox
UnknownCVE-2025-8039: Search terms persisted in URL bar in Mozilla Firefox
UnknownCVE-2025-8038: CSP frame-src was not correctly enforced for paths in Mozilla Firefox
UnknownCVE-2025-8037: Nameless cookies shadow secure cookies in Mozilla Firefox
UnknownActions
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.